CVE Vulnerabilities

CVE-2017-18451

Published: Aug 02, 2019 | Modified: Aug 06, 2019
CVSS 3.x
5.3
MEDIUM
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

cPanel before 64.0.21 allows attackers to read a users crontab file during a short time interval upon a cPAddon upgrade (SEC-257).

Affected Software

Name Vendor Start Version End Version
Cpanel Cpanel 56.0.1 (including) 56.0.49 (excluding)
Cpanel Cpanel 58.0.3 (including) 58.0.49 (excluding)
Cpanel Cpanel 60.0.3 (including) 60.0.43 (excluding)
Cpanel Cpanel 62.0.1 (including) 62.0.24 (excluding)
Cpanel Cpanel 64.0.0 (including) 64.0.21 (excluding)

References